7-15
Cisco ASA Series Firewall CLI Configuration Guide
Chapter 7 ASA FirePOWER Module
Managing the ASA FirePOWER Module
Step 3
Set the ASA FirePOWER module boot image location in ASA disk0 by entering the following command:
hostname#
sw-module module sfr recover configure image disk0:
file_path
Example:
hostname# sw-module module sfr recover configure image
disk0:asasfr-5500x-boot-5.3.1-58.img
If you see a message such as “ERROR: Another service (cxsc) is running, only one service is allowed to
run at any time,” it means that you already have a different software module configured. You must shut
it down and remove it to install a new module as described in the prerequisites section above.
Step 4
Load the ASA FirePOWER boot image:
hostname#
sw-module module sfr recover boot
Step 5
Wait approximately 5-15 minutes for the ASA FirePOWER module to boot up, and then open a console
session to the now-running ASA FirePOWER boot image. You might need to press enter after opening
the session to get to the login prompt. The default username is
admin
and the default password is
Admin123
.
hostname#
session sfr console
Opening console session with module sfr.
Connected to module sfr. Escape character sequence is 'CTRL-^X'.
Cisco ASA SFR Boot Image 5.3.1
asasfr login:
admin
Password:
Admin123
If the module boot has not completed, the
session
command will fail with a message about not being
able to connect over ttyS1. Wait and try again.
Step 6
Configure the system so that you can install the system software package:
asasfr-boot>
setup
Welcome to SFR Setup
[hit Ctrl-C to abort]
Default values are inside []
You are prompted for the following. Note that the management address and gateway, and DNS
information, are the key settings to configure.
•
Host name—Up to 65 alphanumeric characters, no spaces. Hyphens are allowed.
•
Network address—You can set static IPv4 or IPv6 addresses, or use DHCP (for IPv4) or IPv6
stateless autoconfiguration.
•
DNS information—You must identify at least one DNS server, and you can also set the domain name
and search domain.
•
NTP information—You can enable NTP and configure the NTP servers, for setting system time.
Step 7
Install the System Software image:
asasfr-boot>
system install
[
noconfirm
]
url
Include the
noconfirm
option if you do not want to respond to confirmation messages. Use an HTTP,
HTTPS, or FTP URL; if a username and password are required, you will be prompted to supply them.
Summary of Contents for ASA 5508-X
Page 11: ...P A R T 1 Access Control ...
Page 12: ......
Page 157: ...P A R T 2 Network Address Translation ...
Page 158: ......
Page 233: ...P A R T 3 Service Policies and Application Inspection ...
Page 234: ......
Page 379: ...P A R T 4 Connection Management and Threat Detection ...
Page 380: ......